Menu

Show posts

This section allows you to view all posts made by this member. Note that you can only see posts made in areas you currently have access to.

Show posts Menu

Messages - chemlud

#1
26.1, 26,4 Series / Re: PPPoE Connection Issue
July 03, 2026, 03:22:27 PM
Have you tried spoofing the Cisco WAN MAC to your sense WAN?
#2
26.1, 26,4 Series / Re: Firewall rules migration
June 30, 2026, 10:39:56 AM
Hi!

Old topic, I know, but comes up with interwebs search for opnsense firewall migration, so:

Haven't moved to new firewall rules, due to lack of time to wrap my head around the process. So at this point, what is the recommendation:

Migrate on 26.1.latest or wait till 26.7 arrives and migrate in fall?

Thanks in advance!
#3
...I see stuff with WG tunnels (non-connecting, stopping randomly, not starting services on reboot) which shows no pattern or is not related to any changes at the endpoints. There is something weird going on.

Sometimes a restart of the service resolves it, sometimes a reboot is needed. On an ancient pfsense I have to re-install (!) the WG plugin (via another, working WG tunnel to another opnsense, really scary if you are remote...) to make a specific tunnel to an opnsense come up again from time to time.
#4
The reddit above is more than 1 year old, I saw this here

https://bugs.freebsd.org/bugzilla/show_bug.cgi?id=285905

1 year old.

The

...
iwlwifi0: could not load firmware image 'iwlwifi-ty-a0-gf-a0-77.ucode'
iwlwifi0: File size way too small!
...

sounds mega fishy.

AX210 should work in 14.3

https://forums.freebsd.org/threads/slower-than-expected-performance-from-intel-wifi-drivers.98118/
#5
Hello!

First of all: No, it's not me. I learned my lessons on BSD and wifi ;-). So, I'm asking for a ...friend (kind of). Really! :-D

He wants to run an Intel AX210 on his protectli with 26.1.latest. I warned, anyways...

I found this here:

https://www.reddit.com/r/freebsd/comments/1jwbms6/intel_wifi_driver_iwx4_now_in_current/?solution=981b64c5cce237f9981b64c5cce237f9&js_challenge=1&token=bbbe4bf1c9a2b5160829c4be34da5861cc4aafcbe4ac2126a9ecee431d7f929f&jsc_orig_r=

Although 1 year old, he get's something along the line of

iwlwifi-ty-a0-gf-a0-77.ucode: could not load binary firmware /boot/firmware/iwlwifi-ty-a0-gf-a0-77.ucode either
iwlwifi-ty-a0-gf-a0-77.ucode: could not load binary firmware /boot/firmware/iwlwifi-ty-a0-gf-a0-77.ucode either
iwlwifi-ty-a0-gf-a0-77_ucode: could not load binary firmware /boot/firmware/iwlwifi-ty-a0-gf-a0-77_ucode either
iwlwifi_ty_a0_gf_a0_77_ucode: could not load binary firmware /boot/firmware/iwlwifi_ty_a0_gf_a0_77_ucode either
iwlwifi0: could not load firmware image 'iwlwifi-ty-a0-gf-a0-77.ucode'
iwlwifi0: File size way too small!
iwlwifi0: no suitable firmware found!
iwlwifi0: minimum version required: iwlwifi-ty-a0-gf-a0-77
iwlwifi0: maximum version supported: iwlwifi-ty-a0-gf-a0-89
iwlwifi0: check git://git.kernel.org/pub/scm/linux/kernel/git/firmware/linux-firmware.git
iwlwifi0: On FreeBSD the firmware package can be installed running fwget(8).

Is there any hope anytime soon (26.6 maybe?) this will work in AP mode on his OPNsense?


#6
Have this cron job for DNS-resolution for stale WG tunnels for years, working fine in general. But not in this case. Only wa to resolve after reboot: Obtain a fresh WAN IP (DHCP) by changing MAC of WAN interface. Otherwise this one specific tunnel won't come back after reboot. Very, very, very annoying. Had been doing fine for years.
#7
How about "restoring" a custom config.xml with serial console enabled and other parts of the .xmp reset to your favourite state and reboot?

#8
Nice there, lot's of nice people. But reminds me a lot of dark times now. Soccer vs. Olympia, you know...
#12
Definitely! If you want to end up on the US saction list. No bank, no credit card, no nothing.

Bold move!
#13
Is this account a mythos or a mythos bot? :-O
#14
Even for the "off-topic" corner you are miles off-topic... :-p

Just saying.